Commit Graph

66 Commits

Author SHA1 Message Date
Paulo Gomes
755080de3d Update CVE page 2024-02-16 15:58:27 +00:00
Andy Pitcher
77a86a5acc Add Rancher Security Release (Feb-2024) CVEs to latest/2.8/2.7/2.6
- CVE-2023-32193
	- CVE-2023-32192
        - CVE-2023-22649
        - CVE-2023-32194
2024-02-09 12:45:37 -05:00
Billy Tat
dae1b76dc6 Update canonical links 2024-01-29 10:07:22 -08:00
Billy Tat
6d59b46f70 Merge remote-tracking branch 'upstream/main' into move-pages-for-subheaders-latest 2024-01-19 13:42:58 -08:00
Andy Pitcher
ef01bf25ee Add rancher-selinux's rpm install guide for EL9 2023-12-29 11:50:33 +01:00
Billy Tat
dd46955d9c [latest] Move files out of pages-for-subheaders 2023-12-22 13:33:02 -08:00
Billy Tat
03ea6163fb Port version-2.8 updates to latest (/docs) (#1013)
* Port version-2.8 updates to latest (/docs)

Includes changes from 1b6d9506 (2023-10-06) to 1f39a6ff (2023-11-30)

* Fix redirects
2023-12-06 14:48:27 -05:00
pdellamore
25771e2843 Add session management section (#981)
* Add note regarding rancher pentest reports public availability

This PR will add a note regarding third-party penetration test reports
public disclosure.

* Add session management section to rancher security best practices

This PR will create a new section inside Rancher Security Best Practices
adding security recommendations for RM deployments that might need additional
security controls.

* Apply suggestions from code review

Co-authored-by: Paulo Gomes <paulo.gomes.uk@gmail.com>

* Update docs/reference-guides/rancher-security/rancher-security-best-practices.md

* Update docs/reference-guides/rancher-security/rancher-security-best-practices.md

Co-authored-by: Guilherme Macedo <guilherme@gmacedo.com>

* versioned docs

---------

Co-authored-by: Pietro Dell'Amore <pdellamore@MacBook-Pro-de-Pietro.local>
Co-authored-by: Marty Hernandez Avedon <marty.avedon@suse.com>
Co-authored-by: Paulo Gomes <paulo.gomes.uk@gmail.com>
Co-authored-by: Guilherme Macedo <guilherme@gmacedo.com>
2023-11-16 11:35:02 -05:00
Billy Tat
410ae2701a Remove 2.8 specific content and fix typo 2023-10-24 13:06:13 -07:00
Marty Hernandez Avedon
2651168190 Merge branch 'main' into add-rancher-security-best-practices 2023-10-19 17:00:23 -04:00
Jiaqi Luo
0940a22d46 Update the namespace exception list at multiple places (#926) 2023-10-18 12:30:02 -07:00
Billy Tat
5c083c320a Remove version-latest dir
Originally added due to some unexpected versioning behavior that's no longer reproducible

Apply suggestions from code review

Co-authored-by: Marty Hernandez Avedon <martyavedon@gmail.com>
2023-10-12 10:26:54 -07:00
Marty Hernandez Avedon
e89fd0494f Apply suggestions from code review 2023-10-11 15:44:01 -04:00
Pietro Dell'Amore
1f1c43eccf Improve rancher security docs
This commit will improve the public documentation related to rancher-security.
2023-10-11 11:02:51 -03:00
pdellamore
b9154c57d7 Update docs/reference-guides/rancher-security/rancher-security-best-practices.md
Co-authored-by: Paulo Gomes <paulo.gomes.uk@gmail.com>
2023-10-10 10:01:18 -03:00
Pietro Dell'Amore
aaf628caf6 Improve documentation
Add more context to endpoint exposure decisions and also add more details into
the documentation.
2023-10-09 11:45:38 -03:00
Pietro Dell'Amore
1aafb1b436 fix conflicts 2023-10-09 11:32:21 -03:00
Billy Tat
7467f99d89 Merge branch 'main' into 2023-Q4-2.8x 2023-10-06 10:19:22 -07:00
Billy Tat
b27b00da87 Revert "Revert "Merge branch 'main' into main-to-2023-Q3-v2.7x""
This reverts commit 5eb3b2876f.
2023-10-05 16:32:09 -07:00
Pietro Dell'Amore
b2b1262450 Add Rancher Security Best Practices section
This will add a new section at rancher-security section related to some best practices
recommended by the rancher security team.
2023-10-04 15:03:17 -03:00
Marty Hernandez Avedon
cead220aaf #420 Canonical links for Rancher-security (#895)
* canonicized k3s-self-assessment-guide

* canonicized rke1-hardening-guide

* canonicized rke2-self-assessment-guide

* canonicized selinux-rpm

* canonicized rancher-security
2023-10-02 10:47:31 -04:00
Colleen Murphy
70380d36a7 Add hardening guide for Rancher Webhook (#864) 2023-09-29 14:39:29 -04:00
Billy Tat
5eb3b2876f Revert "Merge branch 'main' into main-to-2023-Q3-v2.7x"
This reverts commit 45aa5bb9bd, reversing
changes made to 5380fffa27.
2023-09-27 15:42:04 -07:00
Marty Hernandez Avedon
38959f4ba9 #420 Canonical links for hardening guides (#870)
* canonicized k3s hardening guides

* canonicized rke1 hardening guides

* canonicized rke2 hardening guides
2023-09-22 16:40:03 -04:00
Andy Pitcher
250171d9e4 Rebase and modify cis-1.7 page to include 1.26/1.27 2023-09-20 23:48:07 -03:00
Andy Pitcher
61ff71e235 Remove leading backslash 2023-09-20 23:37:08 -03:00
Andy Pitcher
15606d6db1 Escape <txt> values with backslash
Avoids markdown compilation issues
2023-09-20 23:37:08 -03:00
Andy Pitcher
40cd732265 Update rke2-self-assessment-guide-with-cis-v1.7 2023-09-20 23:37:08 -03:00
Andy Pitcher
81464c73d6 Merge branch 'main' into rke1-self-assessment-guide-with-cis-1.7 2023-09-20 17:28:57 -04:00
Andy Pitcher
35f27f4130 Merge branch 'main' into k3s-self-assessment-guide-with-cis-1.24 2023-09-20 16:24:04 -04:00
Andy Pitcher
00c18c19cd Merge pull request #860 from andypitcher/rke2-self-assessment-guide-with-cis-1.24
[cis-1.24] update rke2-self-assessment-guide
2023-09-20 15:33:55 -04:00
Andy Pitcher
1c2b3f3cce Merge pull request #854 from andypitcher/k3s-self-assessment-guide-with-cis-1.7
[cis-1.7] update k3s-self-assessment-guide
2023-09-20 15:33:40 -04:00
Guilherme Macedo
484a832dff Update k3s-self-assessment-guide-with-cis-v1.24
Signed-off-by: Guilherme Macedo <guilherme@gmacedo.com>
2023-09-20 13:25:51 -03:00
Andy Pitcher
f7e17a5885 Update rke2-self-assessment-guide-with-cis-v1.24 2023-09-20 13:18:43 -03:00
Andy Pitcher
4519cffa32 Modify cis-1.7 page to include 1.26/1.27 2023-09-19 14:27:25 -04:00
Andy Pitcher
1bc4dd2ff7 Modify cis-1.7 page to include 1.26/1.27 2023-09-19 14:17:20 -04:00
Andy Pitcher
1da3478637 Remove leading backslash 2023-09-18 12:41:49 -04:00
Andy Pitcher
8b158444d9 Remove leading backslash 2023-09-18 12:29:07 -04:00
Andy Pitcher
5ea918e217 Remove leading backslash 2023-09-18 11:40:59 -04:00
Andy Pitcher
37eb56a693 Update rke1-self-assessment-guide-with-cis-v1.24 2023-09-17 11:23:24 -04:00
Andy Pitcher
e49c64eef2 Update k3s-self-assessment-guide-with-cis-v1.7 2023-09-15 23:15:24 -04:00
Andy Pitcher
7b36e0f01c Update rke1-self-assessment-guide-with-cis-v1.7 2023-09-15 22:49:25 -04:00
Marty Hernandez Avedon
039fa9c1db Convert links to https://rancher.com/docs/rancher/v2.6 to use correct Markdown syntax (#830) 2023-09-07 21:03:12 -04:00
Jonathan Crowther
7e47e6640c Rename k3s hardening guide (#768)
* Rename file

* Update sidebar

* Add versioned docs
2023-08-14 14:05:50 -04:00
Jonathan Crowther
153da4ce5f Rename rke1 hardening guide (#769)
* Fix title

* Update sidebar

* Add versioned docs
2023-08-14 13:04:18 -04:00
Jonathan Crowther
23d6ec9a62 Rename rke2 hardening guide (#770)
* Update title

* Update sidebar

* versioned page + redirect

* Update rke2-self-assessment-guide-with-cis-v1.7-k8s-v1.25.md

title update

* Fix references to CIS scan in body

---------

Co-authored-by: martyav <marty.avedon@suse.com>
Co-authored-by: Marty Hernandez Avedon <martyavedon@gmail.com>
2023-08-14 12:31:15 -04:00
Billy Tat
d1ff3db699 Merge pull request #641 from btat/broken-links-2
Fix broken links - Part 2
2023-06-01 09:23:01 -07:00
Paulo Gomes
9af052e965 Add new CVEs for Rancher v2.7 and 2.6 (#661)
Signed-off-by: Paulo Gomes <paulo.gomes@suse.com>
2023-06-01 10:23:20 -04:00
Billy Tat
5aff8986c8 Fix links to RKE2 docs
Check shows link as dead, but page redirects. The target site uses Docusaurus
which shows a 404 initially then redirects due to the trailing slash used.
2023-05-31 15:34:09 -07:00
Julien Adamek
f62c8ae5e0 Update PSA sample file 2023-04-26 10:19:11 +02:00